nss-pkcs11-devel-3.36.0-9.el6_10>t  DH`p[ Fyr̔eyH3k`Glab!0cX/N3,患>TRov Z;C &a=n 3a.i#""杍9֑p _mQ݋mN=6__*DZs$G\:J$)W0+:v]xy`c"I,'cW[܇sn_IZ^G>Xv+kVQ`QL6!qN\?i'4k}GK2OOOKyKGL7) f)2R2 odv = ~@ebPQ8НPe vaU_jo#>E-ڋ 96ÄL'1ǡ&G%0WU EBF9h| _<.0A ˬ$X22:$[I9"t ySLt4dbefc049be663813701a461fcf5cef958568546\[ FSh[ʴ?oZpRs"p;!fw]|Ed6`lK9T =cU[\u{R:?bOxl-y3 Si0UܧAtفMIW梜[ TJ 5+; Pn/"zF*>?/] u#p#_us#?I"[+*nc@g*SIqֲAUоҶ_bN2~@YÈ9euf޴լ0% :tCHeN \uMmD4YO QsT5+W,4Z>]ByQ E.b?~Rjc}7^Ap'=_魌LIT5ߖ[v eZ?deOME9a .8YW|@I?Tү2/SBz־m: M8>7?d # [  !SY`         I  X   , `d(8,9 X,:C,GD Hx I XY\ ], ^bdhemfplrt u vw xT Cnss-pkcs11-devel3.36.09.el6_10Development libraries for PKCS #11 (Cryptoki) using NSSLibrary files for developing PKCS #11 modules using basic NSS low level services.[޾x86-01.bsys.centos.org0CentOSMPLv2.0CentOS BuildSystem Development/Librarieshttp://www.mozilla.org/projects/security/pki/nss/linuxx86_64 n@GCB:nx䁤Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi(Zi([Ν[Π[Π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-3.36.0-9.el6_10.src.rpmnss-pkcs11-devel-staticnss-pkcs11-develnss-pkcs11-devel(x86-64)      nss-develnss-softokn-freebl-develrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(VersionedDependencies)rpmlib(PayloadIsXz)3.36.0-9.el6_103.14.3-223.0.4-14.6.0-14.0-13.0.3-15.2-14.8.0[9@Z3@Z@ZZ2@ZZ@Z`@Z%ZZZ)-@Z%8Y@Y i@X@X @X,Xf@Xs{@XOXF@XAb@X,J@X%X#X!@X@X2@X@W%W@V3V@VJVV͛@V@Vk@VVy;@VMVLh@V'~@U@U|@UzUrU@U2G@U+U) U'@U"u@U@TuTd@T"@SS@S@S׌SSQ@S@S-S@S@S@S!@SSU@SFS2@S2@Rb@R߲RƦ@RR$RR;R].@R].@RR@RQPRNREs@R@-@R:@R:@R9R2@R2@R+@R)R)R R@RR@Q@Q@Qzl@QR@QQQNP@P[PqPM@PM@Pd@P@P@PPx@Px@PvO@O O@Ọ@O Oc+@O`@O_6O_6OTOLOLOLOB5O&@O#@O@NU@NNGNN@N@NNw.N`@N`@N`@N^"@N\NGNENNN*N*M@M@MUMMlMfH@M] M:M4/@LL@LwLvW@LvW@LvW@LvW@L @K[KKKO@KK]KUKRKRKMKMKLd@KD{@KD{@KD{@K4@K,@K*@K@KJ@J1@JSJSJ@Jv@J@JG@JG@JJJ@JRJ J@JiJiJ@J@JJJu@Ju@Ju@Ju@Ju@J#J#J@J@JJJJ/@J:J:JzJjJ?r@J?r@J,@J)J)J@J{IzIzIIIԨIԨIIII2HHH+H@H@HoH@H`HCHG@GQG]@G@G@G~G-@G-@G-@G}G@G_@GSG1G FFFޚ@F@F@FvsFkF` @EE(EEl$E D@E D@D@D@D@D@DvCC@CC@C@CZCZCZCZBϼ@Daiki Ueno - 3.36.0-9Daiki Ueno - 3.36.0-8Kai Engert - 3.36.0-7Kai Engert - 3.36.0-6Daiki Ueno - 3.36.0-5Daiki Ueno - 3.36.0-4Daiki Ueno - 3.36.0-3Daiki Ueno - 3.36.0-2Daiki Ueno - 3.36.0-1Daiki Ueno - 3.36.0-0.1.betaDaiki Ueno - 3.34.0-3Daiki Ueno - 3.34.0-2Daiki Ueno - 3.34.0-1Daiki Ueno - 3.28.4-3Kai Engert - 3.28.4-2Daiki Ueno - 3.28.4-1Daiki Ueno - 3.28.3-3Daiki Ueno - 3.28.3-2Daiki Ueno - 3.28.3-1Daiki Ueno - 3.27.1-13Daiki Ueno - 3.27.1-12Daiki Ueno - 3.27.1-11Daiki Ueno - 3.27.1-10Daiki Ueno - 3.27.1-9Daiki Ueno - 3.27.1-8Daiki Ueno - 3.27.1-7Kai Engert - 3.27.1-6Kai Engert - 3.27.1-5Kai Engert - 3.27.1-4Kai Engert - 3.27.1-3Daiki Ueno - 3.27.1-2Daiki Ueno - 3.27.1-1Kai Engert - 3.21.0-8Elio Maldonado - 3.21.0-7Elio Maldonado - 3.21.0-6Elio Maldonado - 3.21.0-5Elio Maldonado - 3.21.0-4Elio Maldonado - 3.21.0-3Elio Maldonado - 3.21.0-2Elio Maldonado - 3.21.0-1Elio Maldonado - 3.19.1-9Elio Maldonado - 3.19.1-7Elio Maldonado - 3.19.1-6Elio Maldonado - 3.19.1-5Elio Maldonado - 3.19.1-4Kai Engert - 3.19.1-3Kai Engert - 3.19.1-2Elio Maldonado - 3.19.1-1Kai Engert - 3.18.0-5.3Elio Maldonado - 3.18.0-5Elio Maldonado - 3.18.0-4Elio Maldonado - 3.18.0-3Elio Maldonado - 3.18.0-2Elio Maldonado - 3.18.0-1Elio Maldonado - 3.16.2.3-4Elio Maldonado - 3.16.2.3-3Elio Maldonado - 3.16.2.3-1Elio Maldonado - 3.16.1-14Elio Maldonado - 3.16.1-13Elio Maldonado - 3.16.1-12Elio Maldonado - 3.16.1-11Elio Maldonado - 3.16.1-10Elio Maldonado - 3.16.1-9Elio Maldonado - 3.16.1-8Elio Maldonado - 3.16.1-7Elio Maldonado - 3.16.1-6Elio Maldonado - 3.16.1-5Elio Maldonado - 3.16.1-4Elio Maldonado - 3.16.1-3Elio Maldonado - 3.16.1-2Elio Maldonado - 3.16.1-1Elio Maldonado - 3.15.3-11Elio Maldonado - 3.15.3-10Elio Maldonado - 3.15.3-9Elio Maldonado - 3.15.3-8Elio Maldonado - 3.15.3-7Elio Maldonado - 3.15.3-6Elio Maldonado - 3.15.3-5Elio Maldonado - 3.15.3-4Elio Maldonado - 3.15.3-3Elio Maldonado - 3.15.3-2Elio Maldonado - 3.15.3-1Elio Maldonado - 3.15.1-15Elio Maldonado - 3.15.1-14Elio Maldonado - 3.15.1-13Elio Maldonado - 3.15.1-12Elio Maldonado - 3.15.1-11Elio Maldonado - 3.15.1-10Elio Maldonado - 3.15.1-9Elio Maldonado - 3.15.1-8Kai Engert - 3.15.1-7Elio Maldonado - 3.15.1-6Elio Maldonado - 3.15.1-5Elio Maldonado - 3.15.1-4Elio Maldonado - 3.15.1-3Elio Maldonado - 3.15.1-2Elio Maldonado - 3.15.1-1Elio Maldonado - 3.14.3-37Elio Maldonado - 3.14.3-36Elio Maldonado - 3.14.3-35Elio Maldonado - 3.14.3-34Kai Engert - 3.14.3-33Elio Maldonado - 3.14.3-5Elio Maldonado - 3.14.3-4Elio Maldonado - 3.14.3-3Elio Maldonado - 3.14.3-2Elio Maldonado - 3.14.3-1Elio Maldonado - 3.14.0.0-12Elio Maldonado - 3.14.0.0-11Elio Maldonado - 3.14.0.0-10Elio Maldonado - 3.14.0.0-9Elio Maldonado - 3.14.0.0-8Elio Maldonado - 3.14.0.0-7Elio Maldonado - 3.14.0.0-6Elio Maldonado - 3.14.0.0-5Elio Maldonado - 3.14.0.0-4Kai Engert - 3.14.0.0-3Bob Relyea - 3.14.0.0-2Elio Maldonado - 3.14.0.0-1Elio Maldonado - 3.13.5-3Elio Maldonado - 3.13.5-2Elio Maldonado - 3.13.5-1Elio Maldonado - 3.13.3-7Elio Maldonado - 3.13.3-6Elio Maldonado Batiz - 3.13.3-5Elio Maldonado Batiz - 3.13.3-4Elio Maldonado - 3.13.3-3Elio Maldonado - 3.13.3-2Elio Maldonado - 3.13.3-1Elio Maldonado Batiz - 3.13.1-6Elio Maldonado - 3.13.1-5Elio Maldonado - 3.13.1-4Elio Maldonado - 3.13.1-4Martin Stransky 3.13.1-3Elio Maldonado Batiz - 3.13.1-2Elio Maldonado - 3.13.1-1Elio Maldonado - 3.12.10-17Elio Maldonado - 3.12.10-16Elio Maldonado - 3.12.10-15Elio Maldonado - 3.12.10-14Elio Maldonado - 3.12.10-13Elio Maldonado - 3.12.10-12Elio Maldonado - 3.12.10-11Elio Maldonado - 3.12.10-10Elio Maldonado - 3.12.10-9Elio Maldonado - 3.12.10-8Elio Maldonado - 3.12.10-7Elio Maldonado - 3.12.10-6Elio Maldonado - 3.12.10-5Elio Maldonado - 3.12.10-4Elio Maldonado - 3.12.10-3Elio Maldonado - 3.12.10-2Elio Maldonado - 3.12.10-1Elio Maldonado - 3.12.9-11Elio Maldonado - 3.12.9-10Elio Maldonado Batiz - 3.12.9-9Elio Maldonado - 3.12.9-8Elio Maldonado - 3.12.9-7Elio Maldonado - 3.12.9-6Elio Maldonado - 3.12.9-5Elio Maldonado - 3.12.9-4Elio Maldonado - 3.12.9-3Elio Maldonado - 3.12.9-2Elio Maldonado - 3.12.9-1Elio Maldonado - 3.12.8-2Elio Maldonado - 3.12.8-1Kai Engert - 3.12.7-2Elio Maldonado - 3.12.7-1Elio Maldonado - 3.12.6-6Elio Maldonado - 3.12.6-5Elio Maldonado - 3.12.6-4Elio Maldonado - 3.12.6-3Elio Maldonado - 3.12.6-2Elio Maldonado - 3.12.6-1.2Elio Maldonado - 3.12.6-1.1Elio Maldonado - 3.12.6-1Elio Maldonado - 3.12.5.99-1Elio Maldonado - 3.12.5-8Elio Maldonado - 3.12.5-7.3Elio Maldonado - 3.12.5-7.2Elio Maldonado - 3.12.5-7.1Elio Maldonado - 3.12.5-7Elio Maldonado - 3.12.5-6Elio Maldonado - 3.12.5-2.1Elio Maldonado - 3.12.5-2Elio Maldonado - 3.12.5-1.14Elio Maldonado - 3.12.5-1.12.1Elio Maldonado - 3.12.5-1.11Elio maldonado - 3.12.5-1.10Elio Maldonado - 3.12.5-1.8Elio Maldonado - 3.12.5-2.1Elio Maldonado - 3.12.5-1.2Elio Maldonado - 3.12.4-15Elio Maldonado - 3.12.4-14Elio Maldonado - 3.12.4-12Elio Maldonado - 3.12.4-11Elio Maldonado - 3.12.4-10Elio Maldonado - 3.12.4-8Elio Maldonado - 3.12.4-6Elio Maldonado - 3.12.4-5Elio Maldonado - 3.12.4-4Elio Maldonado - 3.12.4-3Elio Maldonado - 3.12.4-2Elio Maldonado - 3.12.4-1Elio Maldonado - 3.12.3.99.3-30Elio Maldonado - 3.12.3.99.3-29Elio Maldonado - 3.12.3.99.3-28Elio Maldonado - 3.12.3.99.3-27Elio Maldonado - 3.12.3.99.3-26Elio Maldonado - 3.12.3.99.3-25Warren Togami - 3.12.3.99.3-24Elio Maldonado - 3.12.3.99.3-23Elio Maldonado - 3.12.3.99.3-22Elio Maldonado - 3.12.3.99.3-21Elio Maldonado - 3.12.3.99.3-20Elio Maldonado - 3.12.3.99.3-19Elio Maldonado - 3.12.3.99.3-18Elio Maldonado - 3.12.3.99.3-16Dennis Gilmore - 3.12.3.99.3-15Dennis Gilmore - 3.12.3.99.3-14Dennis Gilmore - 3.12.3.99.3-13Dennis Gilmore - 3.12.3.99.3-12Elio Maldonado+emaldona@redhat.com - 3.12.3.99.3-11Elio Maldonado - 3.12.3.99.3-10Dennis Gilmore - 3.12.3.99.3-9Elio Maldonado - 3.12.3.99.3-7.1Fedora Release Engineering - 3.12.3.99.3-7Elio Maldonado - 3.12.3.99.3-6Elio Maldonado - 3.12.3.99.3-5Elio Maldonado - 3.12.3.99.3-4Kai Engert - 3.12.3.99.3-3Kai Engert - 3.12.3.99.3-2Kai Engert - 3.12.3-7Kai Engert - 3.12.3-4Kai Engert - 3.12.3-3Kai Engert - 3.12.3-2Kai Engert - 3.12.2.99.3-7Kai Engert - 3.12.2.99.3-6Kai Engert - 3.12.2.99.3-5Kai Engert - 3.12.2.99.3-4Kai Engert - 3.12.2.99.3-3Kai Engert - 3.12.2.99.3-2Kai Engert - 3.12.2.99.3-1Fedora Release Engineering - 3.12.2.0-4Kai Engert - 3.12.2.0-3Dennis Gilmore - 3.12.1.1-4Kai Engert - 3.12.1.1-3Kai Engert - 3.12.1.1-2Kai Engert - 3.12.1.0-2Kai Engert - 3.12.0.3-7Kai Engert - 3.12.0.3-6Kai Engert - 3.12.0.3-3Kai Engert - 3.12.0.3-2Kai Engert - 3.12.0.1-1Jesse Keating - 3.11.99.5-2Kai Engert - 3.11.99.5-1Kai Engert - 3.11.99.4-1Kai Engert - 3.11.99.3-6Kai Engert - 3.11.99.3-5Kai Engert - 3.11.99.3-4Kai Engert - 3.11.99.3-3Kai Engert - 3.11.99.3-2Kai Engert - 3.11.99.3-1Kai Engert - 3.11.99.2b-3Kai Engert - 3.11.99.2b-2Kai Engert - 3.11.99.2-2Kai Engert - 3.11.99.2-1Kai Engert - 3.11.7-10Rob Crittenden - 3.11.7-9Kai Engert - 3.11.7-8Bob Relyea - 3.11.7-7Kai Engert - 3.11.7-6Kai Engert - 3.11.7-5Kai Engert - 3.11.7-4Kai Engert - 3.11.7-3Kai Engert - 3.11.7-2Kai Engert - 3.11.5-2Kai Engert - 3.11.5-1Bob Relyea - 3.11.4-4Kai Engert - 3.11.4-1Kai Engert - 3.11.3-2Kai Engert - 3.11.3-1Kai Engert - 3.11.2-2Jesse Keating - 3.11.2-1.1Kai Engert - 3.11.2-1Kai Engert - 3.11.1-2Kai Engert - 3.11.1-1Kai Engert - 3.11-4Jesse Keating - 3.11-3.2Jesse Keating - 3.11-3.1Ray Strode 3.11-3Christopher Aillon 3.11-2Christopher Aillon 3.11-1Christopher Aillon 3.11-0.cvs.2Christopher Aillon 3.11-0.cvsKai Engert Rob Crittenden 3.10-1- Backport upstream fix for CVE-2018-12384 - Remove nss-lockcert-api-change.patch, which turned out to be a mistake (the symbol was not exported from libnss)- Restore CERT_LockCertTrust and CERT_UnlockCertTrust back in cert.h- rebuild- Keep legacy code signing trust flags for backwards compatibility- Decrease the iteration count of PKCS#12 for compatibility with Windows - Fix deadlock when a token is re-inserted while a client process is running- Ignore tests which only works with newer nss-softokn- Use the correct tarball of NSS 3.36 release - Ignore EncryptDeriveTest which only works with newer nss-softokn- Don't skip non-FIPS and ECC test cases in ssl.sh- Rebase to NSS 3.36.0- Rebase to NSS 3.36.0 BETA - Remove upstreamed nss-is-token-present-race.patch - Revert the upstream changes that default to sql database- Replace race.patch and nss-3.16-token-init-race.patch with a proper upstream fix- Don't restrict nss_cycles to sharedb- Rebase to NSS 3.34.0- Fix zero-length record treatment for stream ciphers and SSLv2- Include CKBI 2.14 and updated CA constraints from NSS 3.28.5- Rebase to 3.28.4- Fix crash with tstclnt -W - Adjust gtests to run with our old softoken and downstream patches- Avoid cipher suite ordering change, spotted by Hubert Kario- Rebase to 3.28.3 - Remove upstreamed moz-1282627-rh-1294606.patch, moz-1312141-rh-1387811.patch, moz-1315936.patch, and moz-1318561.patch - Remove no longer necessary nss-duplicate-ciphers.patch - Disable X25519 and exclude tests using it - Catch failed ASN1 decoding of RSA keys, by Kamil Dudka (#1427481)- Update expired PayPalEE.cert- Disable unsupported test cases in ssl_gtests- Adjust the sslstress.txt filename so that it matches with the disableSSL2tests patch ported from RHEL 7 - Exclude SHA384 and CHACHA20_POLY1305 ciphersuites from stress tests - Don't add gtests and ssl_gtests to nss_tests, unless gtests are enabled- Add patch to fix SSL CA name leaks, taken from NSS 3.27.2 release - Add patch to fix bash syntax error in tests/ssl.sh - Add patch to remove duplicate ciphersuites entries in sslinfo.c - Add patch to abort selfserv/strsclnt/tstclnt on non-parsable version range - Build with support for SSLKEYLOGFILE- Update fix_multiple_open patch to fix regression in openldap client - Remove pk11_genobj_leak patch, which caused crash with Firefox - Add comment in the policy file to preserve the last empty line - Disable SHA384 ciphersuites when CKM_TLS12_KEY_AND_MAC_DERIVE is not provided by softoken; this superseds check_hash_impl patch- Fix problem in check_hash_impl patch- Add patch to check if hash algorithms are backed by a token - Add patch to disable TLS_ECDHE_{RSA,ECDSA}_WITH_AES_128_CBC_SHA256, which have never enabled in the past- Add upstream patch to fix a crash. Mozilla #1315936- Disable the use of RSA-PSS with SSL/TLS. #1390161- Use updated upstream patch for RH bug 1387811- Added upstream patches to fix RH bugs 1057388, 1294606, 1387811- Enable gtests when requested- Rebase to NSS 3.27.1 - Remove nss-646045.patch, which is not necessary - Remove p-disable-md5-590364-reversed.patch, which is no-op here, because the patched code is removed later in %setup - Remove disable_hw_gcm.patch, which is no-op here, because the patched code is removed later in %setup. Also remove NSS_DISABLE_HW_GCM setting, which was only required for RHEL 5 - Add Bug-1001841-disable-sslv2-libssl.patch and Bug-1001841-disable-sslv2-tests.patch, which completedly disable EXPORT ciphersuites. Ported from RHEL 7 - Remove disable-export-suites-tests.patch, which is covered by Bug-1001841-disable-sslv2-tests.patch - Remove nss-ca-2.6-enable-legacy.patch, as we decided to not allow 1024 legacy CA certificates - Remove ssl-server-min-key-sizes.patch, as we decided to support DH key size greater than 1023 bits - Remove nss-init-ss-sec-certs-null.patch, which appears to be no-op, as it clears memory area allocated with PORT_ZAlloc() - Remove nss-disable-sslv2-libssl.patch, nss-disable-sslv2-tests.patch, sslauth-no-v2.patch, and nss-sslstress-txt-ssl3-lower-value-in-range.patch as SSLv2 is already disabled in upstream - Remove fix-nss-test-filtering.patch, which is fixed in upstream - Add nss-check-policy-file.patch from Fedora - Install policy config in /etc/pki/nss-legacy/nss-rhel6.config- Ensure all ssl.sh tests are executed- Update sslauth patch to run more tests- Fix syntax errors in patch that disables sslv2 tests - Resolves: Bug 1297888 - Rebase RHEL 6.8 to NSS 3.21 for Firefox 45- Resolves: Bug 1304812 - Disable support for SSLv2 completely.- Add patches for ABI compatibility- Disable extended master-secret due to older version of softoken- Enable two additional ciphers and keep another one disabled - Prevent enabling extended masker key derive- Rebase to NSS-3.21- Prevent TLS 1.2 Transcript Collision attacks against MD5 in key exchange protocol - Resolves: Bug 1289890- Package listsuites as part of the unsupported tools set - Resolves: Bug 1283655- Resolves: Bug 1272504 - Enable TLS 1.2 as the default in nss- Rebuild against updated NSPR- Sync up with the rhel-6.6 branch - Resolves: Bug 1224450- Additional NULL initialization.- Updated the patch to keep old cipher suite order - Resolves: Bug 1224450- Rebase to nss-3.19.1 - Resolves: Bug 1224450- On RHEL 6.x keep the TLS version defaults unchanged. - Require softokn build 22 to ensure runtime compatibility. - Relax the requirement from pkcs11-devel to nss-softokn-freebl-devel to allow same or newer. - Update to CKBI 2.4 from NSS 3.18.1 (the only change in NSS 3.18.1)- Update and reeneable nss-646045.patch on account of the rebase - Resolves: Bug 1200900 - Rebase nss to 3.18 for Firefox 38 ESR [RHEL7.1]- Fix shell syntax error in nss/tests/all.sh - Resolves: Bug 1200900 - Rebase nss to 3.18 for Firefox 38 ESR [RHEL-6.6]- Restore a patch that had been mistakenly disabled - Resolves: Bug 1200900 - Rebase nss to 3.18 for Firefox 38 ESR [RHEL-6.6]- Replace expired PayPal test certificate that breaks the build - Resolves: Bug 1200900 - Rebase nss to 3.18 for Firefox 38 ESR [RHEL-6.6]- Resolves: Bug 1200900 - Rebase nss to 3.18 for Firefox 38 ESR [RHEL-6.6] - Resolves: Bug 1131311 - rhel65 ns-slapd crash, segfault error 4 in libnss3.so in PK11_DoesMechanism at pk11slot.c:1824 - Temporarily disable some tests until expired PayPalEE.cert is renewed- Keep the same cipher suite order as we had in NSS_3_15_3_RTM - Resolves: Bug 1123092 - openldap-2.4.23-34.el6_5.1.i686 fails after updating nss to nss-3.16.1-4.el6_5.i686- Resolves: Bug 1158160 - Upgrade to NSS 3.16.2.3 for Firefox 31.3 - Remove unused indentation pseudo patch - require nss util 3.16.2.3 - Restore patch for certutil man page - supply missing options descriptions to the man page- Resolves: Bug 1158160 - Upgrade to NSS 3.16.2.3 for Firefox 31.3- Resolves: Bug 1145432 - CVE-2014-1568- Fix pem deadlock caused by previous version of a fix for a race condition - Fixes: Bug 1090681- Add references to bugs filed upstream - Related: Bug 1090681, Bug 1104300- Resolves: Bug 1090681 - RHDS 9.1 389-ds-base-1.2.11.15-31 crash in PK11_DoesMechanism- Replace expired PayPal test certificate that breaks the build - Related: Bug 1099619- Fix defects found by coverity - Resolves: Bug 1104300- Backport nss-3.12.6 upstream fix required by Firefox 31 - Resolves: Bug 1099619- Update nspr-version to 4.10.6- Update pem sources to the same ones used on rhel-7 - Remove no longer needed patches on account of this update - Resolves: Bug 1002205- Move removal of directories to the end of the %prep section - Resolves: Bug 689919 - build without any softoken or util sources in the tree- Remove unused patches rendered obsolete- Fix pem module trashing of private keys on failed login - Resolves: Bug 1002205 - PEM module trashes private keys if login fails- Restore use of indentation patch until another bug is resolved - Resolves: Bug 606022 - nss security tools lack man pages- Update to nss-3.16.1 - Resolves: Bug 1099619 - Rebase nss in RHEL 6.6 to NSS 3.16.1- Resolves: Bug 689919 - build without any softoken or util sources in the tree - Add define-uint32.patch to deal with using older version of nss-softokn - Fix suboptimal test failure detection shell code in the %check section- Prevent users from disabling the internal crypto module - Resolves: Bug 1059176 - nss segfaults with opencryptoki module- Improve support for ECDSA algorithm via pluggable ECC - Document the purpose of the iquote.patch - Resolves: Bug 1057224 - Pluggable ECC in NSS not enabled on RHEL 6 and above- Install man pages for the nss security tools - Resolves: Bug 606022 - nss security tools lack man pages- Fix the numbering and naming of the patches - Resolves: Bug 895339 - [PEM] active FTPS with encrypted client key ends up with SSL_ERROR_TOKEN_INSERTION_REMOVAL- make derEncodingsMatch work with encrypted keys - rename a patch, dropped the experimental moniker from it - Resolves: Bug 895339 - [PEM] active FTPS with encrypted client key ends up with SSL_ERROR_TOKEN_INSERTION_REMOVAL- Resolves: Bug 895339 - [PEM] active FTPS with encrypted client key ends up with SSL_ERROR_TOKEN_INSERTION_REMOVAL- Revoke trust in one mis-issued anssi certificate - Resolves: Bug 1042686 - nss: Mis-issued ANSSI/DCSSI certificate (MFSA 2013-117) [rhel-6.6]- Disable hw gcm on rhel-5 based build environments where OS lacks support - Rollback changes to build nss without softokn until Bug 689919 is approved - Cipher suite was run as part of the nss-softokn build- Build nss without softoken, freebl, or util sources in the build source tree - Resolves: Bug 1032472 - CVE-2013-5605 CVE-2013-5606 CVE-2013-1741- Update to NSS_3_15_3_RTM - Resolves: Bug 1032472 - CVE-2013-5605 CVE-2013-5606 CVE-2013-1741 - Resolves: Bug 1031238 - deadlock in trust domain lock and object lock- Using export NSS_DISABLE_HW_GCM=1 to deal with some problemmatic build systems - Resolves: rhbz#1016044 - nss.s390: primary link for libnssckbi.so must be /usr/lib64/libnssckbi.so- Add s390x and ia64 to the %define multilib_arches list used for defining alt_ckbi - Resolves: rhbz#1016044 - nss.s390: primary link for libnssckbi.so must be /usr/lib64/libnssckbi.so- Add zero default value to DISABLETEST check and fix the TEST_FAILURES check and reporting - Resolves: rhbz#990631 - file permissions of pkcs11.txt/secmod.db must be kept when modified by NSS - Related: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Add a zero default value to the DISABLETEST and TEST_FAILURES checks - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Fix the test for zero failures in the %check section - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Restore a mistakenly removed patch - Resolves: rhbz#961659 - SQL backend does not reload certificates- Rebuild for the pem module to link with freel from nss-softokn-3.14.3-6.el6 - Related: rhbz#993441 - NSS needs to conform to new FIPS standard. [rhel-6.5.0] - Related: rhbz#1010224 - NSS 3.15 breaks SSL in OpenLDAP clients- Don't require nss-softokn-fips - Resolves: rhbz#993441 - NSS needs to conform to new FIPS standard. [rhel-6.5.0]- Additional syntax fixes in nss-versus-softoken-test.patch - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Fix all.sh test for which application was last build by updating nss-versus-softoken-test.path - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Disable the cipher suite already run as part of the nss-softokn build - Resolves: rhbz#993441 - NSS needs to conform to new FIPS standard. [rhel-6.5.0]- Require nss-softokn-fips - Resolves: rhbz#993441 - NSS needs to conform to new FIPS standard. [rhel-6.5.0]- Require nspr-4.10.0 - Related: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Fix relative path in %check section to prevent undetected test failures - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x)- Rebase to NSS_3.15.1_RTM - Resolves: rhbz#1002645 - Rebase RHEL 6 to NSS 3.15.1 (for FF 24.x) - Update patches on account of the shallow tree with the rebase to 3.15.1 - Update the pem module sources nss-pem-20130405.tar.bz2 with latest patches applied - Remove patches rendered obsolete by the nss rebase and the updated nss-pem sources - Enable the iquote.patch to access newly introduced types- Do not hold issuer certificate handles in the crl cache - Resolves: rhbz#961659 - SQL backend does not reload certificates- Resolves: rhbz#977341 - nss-tools certutil -H does not list all options- Resolves: rhbz#702083 - dont require unique file basenames- Fix race condition in cert code related to smart cards - Resolves: rhbz#903017 - Firefox hang when CAC/PIV smart card certificates are viewed in the certificate manager- Configure libnssckbi.so to use the alternatives system in order to prepare for a drop in replacement. Please ensure that older packages that don't use the alternatives system for libnssckbi.so have a smaller n-v-r.- Syncup with uptream changes for aes gcm and ecc suiteb - Enable ecc support for suite b - Apply several upstream AES GCM fixes - Use the pristine nss upstream sources with ecc included - Export NSS_ENABLE_ECC=1 in both the build and the check sections - Make failed requests for unsupoprted ssl pkcs 11 bypass non fatal - Resolves: rhbz#882408 - NSS_NO_PKCS11_BYPASS must preserve ABI - Related: rhbz#918950 - rebase nss to 3.14.3- Revert to accepting MD5 on digital signatures by default - Resolves: rhbz#918136 - nss 3.14 - MD5 hash algorithm disabled- Ensure pem uses system freebl as with this update freebl brings in new API's - Resolves: rhbz#918950 - [RFE][RHEL6] Rebase to nss-3.14.3 to fix the lucky-13 issue- Install sechash.h and secmodt.h which are now provided by nss-devel - Resolves: rhbz#918950 - [RFE][RHEL6] Rebase to nss-3.14.3 to fix the lucky-13 issue - Remove unsafe -r option from commands that remove headers already shipped by nss-util and nss-softoken- Update to NSS_3.14.3_RTM - Resolves: rhbz#918950 - [RFE][RHEL6] Rebase to nss-3.14.3 to fix the lucky-13 issue - Update expired test certificates (fixed in upstream bug 852781) - Sync up pem module's rsawrapr.c with softoken's upstream changes for nss-3.14.3 - Reactivate the aia tests- Recreate the distrust patch by backporting the upstream one - Resolves: rhpbz#890914 - Dis-trust TURKTRUST mis-issued *.google.com certificate- Resolves: rhpbz#890914 - Dis-trust TURKTRUST mis-issued *.google.com certificate- Remove a patch that caused a regression - Resolves: rhbz#883620- Fix locking issue causing curl hangs and authenticate to the correct session - Resolves: rhbz#872838- PEM peminit returns CKR_CANT_LOCK when needed to inform caller module isn't thread safe - Resolves: rhbz#555019 - [PEM] invalid writes in multi-threaded libcurl based application- Add dummy sources file to test for and prevent breaking rhpkg commands - Enable testing for 'rhpk upload' and 'rhpk new-sources' breakage such as hangs - Related: rhbz#837089- Update the license to MPLv2.0 - turn off the aia tests - Resolves: rhbz#837089- Resolves: rhbz#702083 - NSS pem module should not require unique base file names- turn on the aia tests - update nss-589636.patch to apply to httpdserv- turn off aia tests for now- turn off ocsp tests for now- Rebase to nss-3.14.0.0-1 - Resolves: rhbz#837089 - Update ssl-cbc-random-iv patch for new sources - Remove patches rendered obsoleted by rebase to 3.14 - Add a patch to enforce no pkcs11 bypass- Resolves: rhbz#830302 - require nspr 4.9.1- Resolves: rhbz#830302 - revert unwanted changes to nss.pc.in- Resolves: rhbz#830302 - Update RHEL 6.x to NSS 3.13.5 and NSPR 4.9.1 for Mozilla 10.0.6- Resolves: rhbz#827351 invalid read and free on invalid cert load failure- Resolves: #rhbz#805232 PEM module may attempt to free uninitialized pointer- Resolves: rhbz#717913 - [PEM] various flaws detected by Coverity - Require nss-util 3.13.3- Resolves: rhbz#772628 nss_Init leaks memory- Resolves: rhbz#746632 - pem_CreateObject mem leak on non existing file name - Use completed patch per code review- Resolves: rhbz#746632 - pem_CreateObject mem leak on non existing file name - Resolves: rhbz#768669 - PEM unregistered callback causes SIGSEGV- Update to 3.13.3 - Resolves: rhbz#798539 - Distrust MITM subCAs issued by TrustWave - Remove builtins-nssckbi_1_88_rtm.patch which the rebase obsoletes- Resolves: rhbz#746632 - Adjust the patch for new sources- Resolves: rhbz#746632 - pem_CreateObject() leaks memory given a non-existing file name- Resolves: 784674 - Protect NSS_Shutdown from clients that fail to initialize nss- Add two needed patches - Resolves: rhbz#783315 - Need nss workaround for freebl bug that causes openswan to drop connections - Resolves: rhbz#747387 - Unable to contact LDAP Server during winsync- Rebuild- Resolves: Bug 784490 - CVE-2011-3389 - Activate a patch that was left out in previous build- Resolves: Bug 744070 - Update to 3.13.1 - Resolves: Bug 784674 - nss should protect against being called before nss_Init - Resolves: Bug 784490 - CVE-2011-3389 HTTPS: block-wise chosen-plaintext attack against SSL/TLS (BEAST)- Resolves: Bug 761086 - Fix nss-735047.patch to not revert the nss-bz689031.patch- Update builtins certs to those from NSSCKBI_1_88_RTM- Bug 747387 - Unable to contact LDAP Server during winsync- Add to the spec file the patch for Bug 671266- More coverity related fixes in the pem module- Coverity related fixes- Add relro support for executables and shared libraries- Add partial RELRO support- Fix the name of the last patch file- Retagging to pick up two missing commits- Update builtins certs to those from NSSCKBI_1_87_RTM- Update builtins certs to those from NSSCKBI_1_86_RTM- Update builtins certs to those from NSSCKBI_1_85_RTM- Fix CMS to verify signed data when SignerInfo indicates signer by subjectKeyID- Fix pem logging to deal with files originally created by root- Retagging for updated patch missing from previous tag- Update to 3.12.10- Resolves: rhbz# 703658 - Fix crmf hard-coded maximum size for wrapped private keys- Resolves: rhbz#688423 - Enable NSS support for pluggable ECC- Add "Conflicts: curl < 7.19.7-26.el6" to fix Bug 694663- Construct private key nickname based on the full pathname of the pem file- Update expired PayPayEE.cert test certificate - Conditionalize some database tests on user not being root- Update to NSS_3.12.9_WITH_CKBI_1_82_RTM- Fix memory leaks caused by SECKEY_ImportDERPublicKey- Short-term fix for ssl test suites hangs on ipv6 type connections- Add requires for pkcs11-devel on nss-softokn-freebl devel - Run the test suites in check section per packaging guidelines- Prefer user database ca cert trust settings system's ones - Swap internal key slot on fips mode switches- Update to 3.12.9 - Fix libnsspem to test for and reject directories- Add suppport for pkcs8 formatted keys in the pem module - Add verify(not md5 size mtime) to configuration files attributes - Prevent nss-sysinit disabling on package upgrade - Create pkcs11.txt with correct permissions regardless of current umask - Add option to setup-nsssysinit.sh to report nss-sysinit status - Update test certificate which had expired- Update to 3.12.8- Increase release version number, no code changes- Update to 3.12.7- Rebuilt- Appying the changes in previous log - Changing some BuildRequires to >= as well - Temporarily disabling all tests for faster builds- Change some = to >= in Requires to enable a rebase next- Fix SIGSEGV within CreateObject (#596783) - Update expired test certificate- Fix nss.pc to not require nss-softokn- rebuilt using nss-util 3.2.6- rebuilt using nspr-devel 4.8.4- Update to 3.12.6- Update to NSS_3_12_6_RC1- Fix curl related regression and general patch code clean up- Resolves: #551784 rebuilt after nss-softokn and nss-util builds - this will generate the coorect nss.spec- rebuilt for RHEL-6 candidate, Resolves: #551784- Updated to 3.12.5 from CVS import from Fedora 12 - Moved blank legacy databases to the lookaside cache - Reenabled the full test suite - Retagging for a RHEL-6-test-build- Retagged- retagging- Fix SIGSEGV on call of NSS_Initialize (#553638)- bump release number and rebuild- Fix nsssysinit to allow root to modify the nss system database (#547860)- Temporarily disabling the ssl tests until Bug 539183 is resolved- Fix an error introduced when adapting the patch for 546211- Remove some left over trace statements from nsssysinit patching- Fix nsssysinit to set the default flags on the crypto module (#545779) - Fix nsssysinit to enable apps to use the system cert store, patch contributed by David Woodhouse (#546221) - Fix segmentation fault when listing keys or certs in the database, patch contributed by Kamil Dudka (#540387) - Sysinit requires coreutils for post install scriplet (#547067) - Remove redundant header from the pem module- Remove unneeded patch- Update to 3.12.5 - CVE-2009-3555 TLS: MITM attacks via session renegotiation- Require nss-softoken of same arch as nss (#527867)- Fix bug where user was prompted for a password when listing keys on an empty system database (#527048) - Fix setup-nsssysinit to handle more general flags formats (#527051)- Fix syntax error in setup-nsssysinit.sh- Fix sysinit to be under mozilla/security/nss/lib- Add nss-sysinit activation/deactivation script- Install blank databases and configuration file for system shared database - nsssysinit queries system for fips mode before relying on environment variable- Restoring nssutil and -rpath-link to nss-config for now - 522477- Add the nss-sysinit subpackage- Installing shared libraries to %{_libdir}- Retagging to pick up new sources- Update pem enabling source tar with latest fixes (509705, 51209)- PEM module implements memory management for internal objects - 509705 - PEM module doesn't crash when processing malformed key files - 512019- Remove symbolic links to shared libraries from devel - 521155 - No rpath-link in nss-softokn-config- Update to 3.12.4- Fix FORTIFY_SOURCE buffer overflows in test suite on ppc and ppc64 - bug 519766 - Fixed requires and buildrequires as per recommendations in spec file review- Restoring patches 2 and 7 as we still compile all sources - Applying the nss-nolocalsql.patch solves nss-tools sqlite dependency problems- restore require sqlite- Don't require sqlite for nss- Ensure versions in the requires match those used when creating nss.pc- Remove nss-prelink.conf as signed all shared libraries moved to nss-softokn - Add a temprary hack to nss.pc.in to unblock builds- caolan's nss.pc patch- Bump the release number for a chained build of nss-util, nss-softokn and nss- Fix nss-config not to include nssutil - Add BuildRequires on nss-softokn and nss-util since build also runs the test suite- disabling all tests while we investigate a buffer overflow bug- disabling some tests while we investigate a buffer overflow bug - 519766- remove patches that are now in nss-softokn and - remove spurious exec-permissions for nss.pc per rpmlint - single requires line in nss.pc.in- Fix BuildRequires: nss-softokn-devel release number- fix nss.pc.in to have one single requires line- cleanups for softokn- remove the softokn subpackages- don install the nss-util pkgconfig bits- remove from -devel the 3 headers that ship in nss-util-devel- kill off the nss-util nss-util-devel subpackages- split off nss-softokn and nss-util as subpackages with their own rpms - first phase of splitting nss-softokn and nss-util as their own packages- must install libnssutil3.since nss-util is untagged at the moment - preserve time stamps when installing various files- dont install libnssutil3.so since its now in nss-util- Fix spec file problems uncovered by Fedora_12_Mass_Rebuild- Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild- removed two patch files which are no longer needed and fixed previous change log number- updated pem module incorporates various patches - fix off-by-one error when computing size to reduce memory leak. (483855) - fix data type to work on x86_64 systems. (429175) - fix various memory leaks and free internal objects on module unload. (501080) - fix to not clone internal objects in collect_objects(). (501118) - fix to not bypass initialization if module arguments are omitted. (501058) - fix numerous gcc warnings. (500815) - fix to support arbitrarily long password while loading a private key. (500180) - fix memory leak in make_key and memory leaks and return values in pem_mdSession_Login (501191)- add patch for bug 502133 upstream bug 496997- rebuild with higher release number for upgrade sanity- updated to NSS_3_12_4_FIPS1_WITH_CKBI_1_75- re-enable test suite - add patch for upstream bug 488646 and add newer paypal certs in order to make the test suite pass- add conflicts info in order to fix bug 499436- ship .chk files instead of running shlibsign at install time - include .chk file in softokn-freebl subpackage - add patch for upstream nss bug 488350- Update to NSS 3.12.3- temporarily disable the test suite because of bug 494266- fix softokn-freebl dependency for multilib (bug 494122)- introduce separate nss-softokn-freebl package- disable execstack when building freebl- add upstream patch to fix bug 483855- build nspr-less freebl library- Update to NSS_3_12_3_BETA4- Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild- update to NSS_3_12_2_RC1 - use system zlib- add sparc64 to the list of 64 bit arches- bug 456847, move pkgconfig requirement to devel package- Update to NSS_3_12_1_RC2- NSS 3.12.1 RC1- fix bug bug 429175 in libpem module- bug 456847, add Requires: pkgconfig- nss package should own /etc/prelink.conf.d folder, rhbz#452062 - use upstream patch to fix test suite abort- Update to NSS_3_12_RC4- Update to NSS_3_12_RC2- Zapping old Obsoletes/Provides. No longer needed, causes multilib headache.- Update to NSS_3_12_BETA3- NSS 3.12 Beta 2 - Use /usr/lib{64} as devel libdir, create symbolic links.- Apply upstream patch for bug 417664, enable test suite on pcc.- Support concurrent runs of the test suite on a single build host.- disable test suite on ppc- disable test suite on ppc64- Build against gcc 4.3.0, use workaround for bug 432146 - Run the test suite after the build and abort on failures.* NSS 3.12 Beta 1- move .so files to /lib- NSS 3.12 alpha 2b- upstream patches to avoid calling netstat for random data- NSS 3.12 alpha 2- Add /etc/prelink.conf.d/nss-prelink.conf in order to blacklist our signed libraries and protect them from modification.- Fix off-by-one error in the PEM module- fix a C++ mode compilation error- Add 3.12 ckfw and libnsspem- Updated license tag- Ensure the workaround for mozilla bug 51429 really get's built.- Better approach to ship freebl/softokn based on 3.11.5 - Remove link time dependency on softokn- Fix unowned directories, rhbz#233890- Update to 3.11.7, but freebl/softokn remain at 3.11.5. - Use a workaround to avoid mozilla bug 51429.- Fix rhbz#230545, failure to enable FIPS mode - Fix rhbz#220542, make NSS more tolerant of resets when in the middle of prompting for a user password.- Update to 3.11.5 - This update fixes two security vulnerabilities with SSL 2 - Do not use -rpath link option - Added several unsupported tools to tools package- disable ECC, cleanout dead code- Update to 3.11.4- Revert the attempt to require latest NSPR, as it is not yet available in the build infrastructure.- Update to 3.11.3- Add /etc/pki/nssdb- rebuild- Update to 3.11.2 - Enable executable bit on shared libs, also fixes debug info.- Enable Elliptic Curve Cryptography (ECC)- Update to 3.11.1 - Include upstream patch to limit curves- add --noexecstack when compiling assembler on x86_64- bump again for double-long bug on ppc(64)- rebuilt for new gcc4.1 snapshot and glibc changes- rebuild- Update file list for the devel packages- Update to 3.11- Add patch to allow building on ppc* - Update the pkgconfig file to Require nspr- Initial import into Fedora Core, based on a CVS snapshot of the NSS_3_11_RTM tag - Fix up the pkcs11-devel subpackage to contain the proper headers - Build with RPM_OPT_FLAGS - No need to have rpath of /usr/lib in the pc file- Adressed review comments by Wan-Teh Chang, Bob Relyea, Christopher Aillon.- Initial build 3.36.0-9.el6_103.36.0-9.el6_103.36.0-9.el6_10nssbase.hnssbaset.hnssckepv.hnssckft.hnssckfw.hnssckfwc.hnssckfwt.hnssckg.hnssckmdt.hnssckt.hnssck.apilibnssb.alibnssckfw.a/usr/include/nss3//usr/include/nss3/templates//usr/lib64/-O2 -g -pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector --param=ssp-buffer-size=4 -m64 -mtune=genericcpioxz2x86_64-redhat-linux-gnuASCII textcurrent ar archivedirectory?7zXZ !PH6] b2u Q{Kpڰr]Lgq 33=~|sq?G\6xw*CpeR_q\x%V2|Êw*6Us%ǦT/, }3^DQ *-D1X5xM()5\j1(Y I36g:WiZQDu7D:Gs9n-yIpAd.SڬB Ys4ӝjżOطtqH5|# |[Ү+Y Jcbg=ڲ[t3m % Ҵ4Jv98(G6EDQES ;ogge쮎 z)jO$6V+f|bb>r~E:FS`ֻ* ^YgVv*' fD^`g^0D$SՐzPGl"ǺPc3۲̊{0_ ZM{뗨 |pġcԛl#*=e*EpUI=vv7nB¥6dإm:<}(4(U͇He6,JioFIDL5@Ϻƫ)ޮTE>2x[x$~ ɑ==y^NR[ٹɼ1z嶧8cهÑh8jY.Nk$#WOI# QZwl{k+vZ:DMP2`SQd)kTMƱRH|2C?=RqG@þ|NcdjakN0lV$P6%->&b6ճp3:26\Q~@V)I,ct,x\|׮}얊 z鮸# F m%Z,?s ;O8r#&\`OԻy{jLA`˨>cO;~Fb/-2xH/zeqą:j],z\S[$1l {8dAc-H-"ۓBN/bz ȯ)u⾸mL7s%_ʀg/=܉pNrf`S mom2'FF%ZU}qDP:~/;ʼn̫fBMNiTE#ĖۖhB R$NAP~.,ZnKEZSJ_neTcZT(wj5"N 73WAHgψHJCT?8AUeS<YB$ޢcU!D#*Gwi^q<׷?ńIUB+dpt֪ͥUzJ `2m(g{G֩r%Bd {XC6_=N/)b=`KnQ DzB޽-3:E+V+~WB0rc^h+?S?z @fwAP*U;8 !a}dP 4C2w,L[#{=|A=q"Biֆ6m?K3JmWLAN,Z++~Aד ?[.({̓k\02>*4&_~Ԋ<L2jMs}3Mcc[X9MZ_HsWp)!V=>b-Zr큚Xآyz~e9rg}ZB>5kLƙρ5ϲD2oxFǹ1+Xg40MbBU;YI7`IzΨC*ֈWƘ p2   B^ҬKtE!OT 1+w,8ޥj:+ v#\ r]Dn&` o 8$T6"R>zIv;rc2!M>ڈNgbR<,. }®)?nt4U >>#\5(⠼*} ԹQ'Âws )UN"A/Rt +uc}ع<ܪ)_¢pp R Sl ?6JG\dYJo8;{h!IC#)Xtr.Gy2!l#F(?ܺzU+y A^Sjg©2͙&jubc /;: oϕB>Lxi?0)Dh1ILokM`8b˷jxpSa,?^zEE"$tF %~ Lׇkfe$# h /%eAjJgҗN)S3{c0M 2mVTz3[K478.uV]c(-~v b$(oڀވS:m1)L`îp$ճ:1ၞ͌b#zB&rh耖kW~W,_(KYĈVbwE%*{V(k}j{la֦R@S\؁qHirbI@dp's:MЫ'#'Yk\gCN 9#YTC5y1uh1bDDB?l@.EL$=w|*g4kigiHM^T:&r{ 3YPy+qJ}RAQ%v 9Qr\NKe`.^7_!K!s:%?.wkL+Ni]hlƴMY- ?͘J~* &C- (v_@:Gv \=`8 ZlS-%cQbvu[0r^Mym/ M\+)B$mٓ/Ip7T#Vf Dj@O#Д]rJڣ[hs7_p VOOYZN#[XUŚNo@;B=Kt;[Tjnjb9̚s/(~ތ準(."yҟu#vw[r DucNno. mgg~F/%4qN{M/2y=Q\?f?Y-)=%F2e;Ns Oe.<Ūݹ\ݣ@K]z&kq52:`|K݉Mw gegnH^ﴏ7c$^)N!ꑎPkvϜr-\?!rad& 1NNwCR aWچ°b}`C)I`j5$ΗRzd.Ƒf4^z~U g-L%40tVx(ug4l5f2ѩ idpsZ-eVֵxGDyt~dLεQ]'muMt%`(lty=`7Oϴwe6 p;WA@\E#MZ<ʀGrkI1ޔtڗr 3}w,݆5#&"j^@ߦo0ݪ8?,4nzh7)^UH8=kH`U#._ѰJ؃ ukXO,a}%@ɡ{i)*(ˢ*eJx%9r@{JbJQOjRqGfgvqi׾]9={y o~wwGIb@0G7~/ 9Ye=c@'@YpS>l.o,{:XDڶmS ChIT\m0т䃒k|_O`e=xSeP9 !kyCtI3ayC~c|kN5~}yNC6F#\y˗mkΌ#noa`qx-'j@.W$fc1֌p*n+A-?ѻ?]"<:8.nW1@B¤cmՈShW'KţgfSؓdضR\ f^E8 27, .lJu{IVU9~(etVXKO)dAݸWX!WQC3?9 @v1D$a{F\7/k /6M ?2ҳ妝,5j"b3TuSc|`3&(.5-$& :h1hS.I=aLBbo"ѼR*rN1yBH찲"ȸtuz:va&Jϒj!5ow/va.PE\aU3@%ygM{ޔ.& A{Fy3dL{BffC<JXʊDD ϩYmyc! :0- V1'_(SO7b5p:fM\bd:O_VT⵸oYn$aPo,0-)PSZ e]sS+p:)7G %,ݗf+!|cbLHKܱm*.G(`7VB;B140 n+d~Mzc+}&^T/喣WM?Dy*u={e8%3Ĥ|gGOE`~~٠x)9Sֳ)Жѷ X)=jPJbP1pNf2:!N2{BpDƭ*ma(QIO"+8@QicȸxuHR㿥}8Nm\ V:LzE˚[5MR4&֭"i, q!|GO0ʊ2bRs{VH>]G~nGUkgitT/"o1U5금j (b 9VnJ)aI0h6 vЛG)T;AEOZ0ߖ="?cAtdaV=\z];Z uIy_ ..db{`eސ'|03a eٛbByiB/W 'žC}U b0:2\/A~1Xţv4 3Vեk[LHV°zkꊃtToEKw R-SR-";;5A>ٞpÁ2-FУ҉/G#ԈQU-&?e-(ئ'h&+6Ȅb}*l D[5ҏC:\XöՓ6*_4j爱Ƚ {Ukwg)o,kqݰbΪ[Mu+5J`k]h,Rk)Ѷ m^u˨wikю抯%ѧNQɸ>xKzLb%Zy@ҹ_Ru4]4L!ȲLjkkyޝ:&>bb`n^50CQLdIԏ P'Wr3?ڎ -u2e/sDoUPltE z-C7Od\ UÕ uwſ5#+@8^ӫ@srfپ+8[ps/l| ?rbo)Z`.L/]Q&aʸ0DX^#ީ@a>\hC1G9{vtr n:){zb,-w(Ϫ'Oq*(!΁:ZbayL-l` u^)Wh0֌C9;EPp7קg=BwSUVvWL څ+& {W0\3.ݿr9;4j'%o0tYSTt윐ė#(ۆω2Tb)xAZݛK)5rY:Ё9Vp,@>'j: ӰHD)WN=ce** G!tz! raMK-is1s'hRH3:Þdz;6^EY!ps"/B-F ^8F]@RZkuCD9 e=ykGe\v#4FM^#q ֦+^%LeCpϙa QD:l%- Mcuaya;`|b¥8CɐSF_OvULCyMdk 5X%@|JYX[r[nl Pt`k?*z ތn4{hu4ڧϭ"An<w Po5$+ts&}MCO8~y WBϜ`~~mB(6G%#A@=-84R$WWX{ cҩfёFkp ;ow)9 %iwrP$6λYc ﴒo$ D֜,4i_!څ@Oɥ*'Bs=~Q[_;?-vGDZ!4,sS'mg&t -ڤPifL9 ψ']E:q-RGgɮmg9om͢IY$'Q;w֐zl0vZx B2A-. Anuސtm Y3rnHn"rͳ4p8ӌscy|:eaOtPUJW¤lf|q>B9wL2֭Ȫ,iS o4_q"()8=iUlB0{;,wd_%b3UǝRGO"az҆/Jڀ޳#'_ꨵIC#]ySs{z,i3yXO 0`] Q{\_w1o?4e!-{D4Ǐ[!0&D"{ļL\~zfHVX$[0,K9L]U aw\Z0[  f$(kСu ȚgTxn66;JEf&&?sry]1KbWfk3ѦW7F&gċnBEgm7HTL2-OW- gLr9%F]:fEﲬPV#-nyUϖS{O IL'∨nj_rmjaL#&El \P9E{+>?Rvs^fcz>}ɇJ!m jxQL 랰]0U\z.!Ye>Ƿ2Qɭ6NT&jNҋ 7N`UWd,En(: OQuplHEJ݃:m6S,:W1кMm7\׮q̫(tHT#mc0^ ?{9 ;EGcp\~v b0≉[|Up5ebZ}#0o|;2c}oKP~KJ@ }oܺxTBy+W:7⦕6`+lB+ c&pYi?E:0 J#/dNի2.F7rD#&A9M?`=D{CDmjf"kjU~7#3]Qd6?0FBVqBf7Hj{Ĉ/NYJnB%*!PRp. 4I:(W!Q~LcdX;lM:HgĊ@wA$6%ﱱgOC ,&ڞc`1l1x/`QMD{$K%$D\FIuة48 99l;iM\[8*#MU`.gVg /yx"@MԷci.iʍ`|&ZU$­I*.o \Fի-t̪Xd*/0g%>|}/Sat>[W;>k|N@U[n mzp7QkwGg6*p nMα~DfjXco$Kc?0A6F<`O 6^!6Sw,sC97Y$+\q\TFҎmH8߇jVs<Ͱ$?\|8\LHSʆZǭH("}~G(fVJM{{R2V$:x s? #qsG ˂BP`̗ۋD~bݣQݓ?*` K[|; Ә/2ՌP\xQ3n W(0Hh]i:&eD'yJ4ni PpTq7cwzDZZ XղT*jpҏ`༴2Os73GPcR,Sztay>V>W(L;!(.tq?_~w' Լd\`5H6*&]$e^ܕB*AYTn\yaD:7xp,7rgxpެΆ!,b~xl9v܆t&^ lWU3u`wҚ!=>ԱaŒTKU4#(W;N|axi·d᪎v~,Caxu/vA0x0|\mmgY"O5hg([T ܇# `Pߊu]10|⼖Ar(^ok ..41L4f#p7UK-F1>0unҀ~Iέz[]?v9,  ~Js6AyFᮃ*M8(FRgo{\Ѥ.o1{_"^RU*Xp|gj\D~D)`JgeDQĿq_ H@x#ŏ͚zjIw$u:9Grs-!Z){ctEgT<~=m(_/";Io{y^Yl>vLK7,g)}[؜lH(S__RNԏ;7Z)OZw揪kENX$zb_̏. 4Pr' ~]n4 o1*^bOg8acZs슈;I-#hg혯qVcwƦޟaD1P[ͲF_S {[xJ쇩-DȾ4p0@DmսLjƝkz&img:_.XFw>Dž_9j}ɾ^Wӻ%hfҤ8Ɋ5Vsx̓ÎQJ:ƣ(*[T JÚZ=H `H#bRM_̳zf˺ld1ns͜K[\4 8z䉕1|)84fu?{fwE@awoMm#Tdo08,j^S0["|HI1Y+Ozo:TnF|E[GLc3K(9 [Xj@BΆ >0ۿQ؝[ʀOI D?wxDuJ1ۃ!v)D0Ў]pgSI \s -8DN"+Y[6L)ҺS=7wz7x׊_}u=݀RͳP%EeuZy">)bB/k `|k>rJ; GλA 2klŊ m"ܫ3b)Z8|҇i$$H iwcNpcL!8|[VN&ָ.E>1rݑOywO0O\W.0H IDD=r0JM>O\&/|<.(|1xvϚ!\#+Ah4QdkJ0tWUHff̟,w{[hf@Jٴ܅9U+\x'K[Py1=Z|@aEdDQ@ ذZXi,h%ro9Ǔs[Y Ęg3/P<[>Id30#Z%qa^0y_6>D8ۥYC1M-GvJ[B^ gEf_LOv_FA!M l!v G 3 o։0?m 8nS:nOz8nuRW\jB@jh%S2&:q2\H=@׽O6M }}|m' *;LLӒ6)X9ANR;ab.V[iMDֽ3l)PxG;8ʣk Fm4J@^3/AH@*F߇F;E!( _bp=cIT3o V90 Y܁7)<=SI% 9XI1~@n̘AU:z>\ӚLy2?y!珞pC>O~}v5AX  /Dl|4i']Gua_]Bn6$nsz+odה2eGyB&XI3PG|KȨbV.\m"%5+99J.mS߶ H? ƌ6Z[)#|5 "8*ԝ9c`x_ژM) )SSs |kd̴v-rXTY盜qGxmQKy* `(f"BO̘KvBFuF, :xP Nm̅EM!~![8ؖ$t#=)^!= #d$&HB+C9}񻀌JyA~#ך|FzR1 4:2hҦsQqp?I;ӲVpހCe. ;R@ڗߏ!GxGESIe@D|ܣ_MхL&bXl z)-FО5hiz&Ѱ9`h_*wM DRGBcA܉8Ħa{ 1*}L;Ҳ 399Bp+ bP2DkKԔ=c=!={融 x Dž Cn#v쿣wB{q\bFPϊ4Sg2t-ydWr=Cu5< oR8l1ne^ U~YO2";k\bɘ)fAym i5RbGzl ?7eDٝwnqϐ9Bpac0dnƉQFTP%oI;4>'AYn#[`*q%JB oVMy*%Ӝ_^ !6UI${!]Ӟ=icXf8H k?ӗzGG$R恒YP+lg=ɲ8$Q"[ytZ1ܭX5y3[M8Kix3Tņɿ : Rc7U4#xNysvɘ.JW iw5LԹw+4pTf{:PEĽz #!97ݙ̢E`y4rY?}"eu{}R+*Koc6X1။wGn[F~U[%=N'8ܪ-iVJot(DJGfTLwpL;9B17ߋ{w]2b x_nw)h.&׵U'خr;s"Ls3Q| ލA{`x&=,~y1ږxomq zv<7 kM_z\uVKMטkv$S3CoHi|$Z(L/6T`Y^17W8IeZG{=C3 $T*?|i1c;`۩Ͼ"^m-^۱qulث}  ڏO6m@;Y|_M#Sidf*{u=R3skQ*-(Ucԛ ߑjY+kr\sVبWTEƤOb'ی1W[;5C㝧DD :5 $?}qvd0k00TAtJgb-|0Ā6IGG.#6ءXbިF@Fa*MtH7!CѨ-Q#FP3jEm`S*R/kx4h`XdrG (qb%TPƹvmx;s>W r)H]1b \76t)SgU x9B^xزw'Jɢc$(Y[ǜWxt7rǁshoK! 2ҬEe 1kTrm :J X~?y=J""&4oؚn쐗%Yǥږf qn"Ug`<[.]mk]0! #qM~hA.!;*Oބ_ GխY[B&s;n,iGpј4hJ .bDѷ"<'iKA `7?mNfLk O=͹me͜ojG}0 -p A0LA #AjHQlxPG2n W+fpBToh'THQO]ZvwIrs~FN2C\IbxZWO5[bMyAΘcL"t@@:YThД6l>ZD;_XC#P'^)~eZ9ǿ| ՍPJR mq-/-a8_f*6a2dfoڜkdݷcAbXI_((Wq OxIF:aN*0b[B@nuƭnxÜl'0/o2l*{;#"MNFhxNqʾU o%U@64rReb.]>騶Ô駑HFQ[^ޤTNT}tHJkHÂNXuu.p3R :\*=D̈́^z9낫mD#=ܠ p^zNe2:^oGCp\J&L|-a;Q',ѕU>|0׵C/GOCW)Q 8O짟T;v ds+p9@ٷt#\zU|.>&cd^{+`(EuIOM_J*:T Y^&ž%'f jJ asZ (]'RhG"Se@$kQ3@xVֽ_#"+ 㢥{D3V6Pr\>bI#}%_7:Y?ڞNՒ #EڇmTUuh뫉Wr.vNWW6Zph=~oZ5.ڣ_,3Ï8BNRdGG:Q`s-b@#'|m %4³/Z!21NIƚ%TqFm=R,5vhP;Bڽ7}J輺ֹSĺa@ vͰr:S^,UzUK/Xi2ߍ!ur#BtE(f`rfl%նbAwnb@wwҩ fs&v<  %]օbԁWܧz&/4j,X;{jjj'QVӍJhZ}BMVoaUPzNAA^(F^@9c@1_/$[Ӥ% 1 >!awS/^MGΐS^V aj-}6opPDGRZ7bVsxOe5DL1ڊ Yd}r:Ȭ xX{ʽe'].sp}}6KJk#ȚYIR b=1/mSuX|UeX]N9#X3'(Urp\ZLWЅnq ~_;%U^:fFt}Tx# .=P,ݍ6ꮔ_q&-/f`f6.:#\R @N#E 0_N=AKZ8ˠė3<gE%sƇs}`u}߰+\3t5:U%RL+/'S]˞'`Mߒ_ v 4&&sWIڭ eߎf܀* ¸\Pfha j5eAA !O;6Nct3@_S/٦m|OpwJ$@z B0KƳ<~*8yV &A_ꓯ]A:>7X;5TZB~&-.C )P E` b~xhRAYނus -qG/]^Q h wY^ul;pt,Mfd6Z>HhK"QR֭ee{UPKk= tSrjL㰕w7JՉ8~cCΡp@$4Wzba'2|f+icܞ$V8f| hȈL.ҍ,Z4Nd;ze>U'Ue;ؐ( );OL TMGdX6^(J)*[[R8#ا/G"cFOvX RpC<|6mVC2'UR@^T%8BT^~0?x#y7VP|;i3R_ ~7<8YuNG'=^AX$ DɌuW)r8,BL9ڿKҝQ\%kw‰f1omf,q;sMTrFmmӅWq#۳x_K,黮 OVȧKIڽy̍*U:ƨtwWrk6ObV+}jkM2"kyi;D)Sx !(Լ"q%"MOSQC*V<30'e93w A'3{U⟈MurK/g {ϣyMlE"[-P7Wh^cG C !OJh*- ^T:ֹCsuG-&(i|QD =TS!_$lӿ#R?`LI)Ih;zC5`&odFfd`BޮπA(A-_,>SmKպ6īdPڲޚ!'ص Qu 8!HԺ<\H5e7Ee \#\- _TI|$"VD.br ϼp߳1n膪"+LT!#]ԃV8^u$d ́@V|{]Bı Ac*zu^+yAf$Tfqs5b3eΗwq9<(<Ȕ?^%TdsVp?9Ef!$0BA۾Dí~w ZE$"db·yۂW.#~~Y7' ^ĭ[_Rvnʠǟcn :, ֨58Ozmĸ LR%8G߉ٻx,BO_*4|AcVwvr_JX¾~#-*dzzFX+<{(oJŨ!z:վ&Yh8H9_G9z9˝'ygU=\1VjDCJV"89EKԮWh2Ӆ ~+H`bԒg6bCu}~@Sx**B[Y:^=Ir;b11|3'Qр"Gӎ w .:4Cxf$rumq>敽/1U~ҭ_^O\ SPLl>L«/<(|ɹg+w~Iί ( S>rn:"@[Y pSM1?Xgp,5_tᣊФ~pEl6:joy8iFym]AaB-%ͳCZVpiK<ȍh‡(bb *~A#BBH^;A_ kA>߈u֧(4?oa7LLLmYн'XGؠ>`NWOq9™t4'Tumf7D F{j Edոq6{HpIh#8ǹ@  Pd*hZ{_)#Whjcے+Y<[եB޼-9BExFZ4=/w 7U9UvO#;v-~_!63%E:<0b AE| 6$|9v엎B8qY(E{ / Cg~|lzuuMd8j@M?qŮToOޥEI⦚7Q#J:@<^lܡcB~pΔ~u7SۋA_:=1YQc)0$LbUȂ˯ٝDupՍ*w}x KůgL! .ĖYHO6 $&h6c.ZӍ7X9UylOHjsOXCAMJu+D[m0yӑR؛|MbQ[-uj wHݦ/) BDqJWppl#ҋJ'7ƼFݎF7c=PN qg<޶ &(c<)؝c5 !U{/ 4%k*ZZB;"4Dk]]m /[s;P#8aORH Ɖٶ0g`I{5xN՞HJ_̑Uz*Bz98ͦ {vg:n9IhAE('Ȁd2PFw0Wlv/׎|dm#MJK;xRrBbӤkHbUA &$+LrvqaG,gI0 p :i;#iڑacHݮM (Wk FjBdo|&zAg_NY\FK<)ɟp 9xGLatj B?9pI;C*k\+ztuˮFzo-UG:HF(r= KLhi/~m/i]3hlYT7wzIFI0nqoeEQ3S/@"RmIb!XBAC³M {b)܈yrWk8q(ޣ] SqpVl@;&2o>_X l m*ʏ(]iX #D w9eMF)aoCP !/DOAE/vk$RSn58^B&,h|#I19kj{V,X=;Σ6䲢 RդP kM54`R1cN R QAoO f 4GOaQufnq;%ADb9v+18`S󊬤ثhepL@<契` -3GPrպZ;{uք$@O`P\{1.Cf%GU'7gVw8=6 "!ubrڲ}o)E'bY,9n0y7!jTPѧs0 !''-<Ԃ^{sBVOqΣ6Dނxqa AeM3@gw SuR\]q&VPyJziz{`,U4BPU6Ig"J~SL$PZQb3K[` QZdN|Lukb83A.;jMriPQX49pW?+ߔ| 1HQjhԸ̣;͂_c327vZ-S%%`xkU&nqk' ,k :!j\ BTY%7|\_qE/IHějPl#HUo<Ã[Iqގ, r^l]"-zZboɳ5R]cO/F98"~hen:ڨ^ѭP> } *u0J>cU܎^׹-c a=(գyAZRB5lS\+ځf>,|DWjA+#- 5o="#:*j9~7Y 9qnjɖ=NLǾH}cld]p zvuD/mnK*|ffa䜱.Ę !zbIc4\d/zt|oFcoRH FOz,4%UBSN'f5OZ "p;M ٠ u5{C1y jU-$Q42DizD:""k8% pbX7in Dn6}U{hS]{]><,aښJ0ګ,TPpQr`po?j:z+K:HC{]xkr_r_kTY N:Tcf3(C ܃!յq|et7N%6(;Iguq1dkt!G`i&eyGJu_HjsfkZmuc2)"]ǣ'^ZGm g5s,~@;^Փ6Vhx3&\s&,p 1KrY0^Nn8`-y((P7*=WޡRC ^92NonwV*gZGP=+> cZ&R}ob^"Ȍ|V"{^E%sn[JL_rQ *)lنVJFz-0Zm yl,POwj^$THt_R):30I^YQ.ʅ%I;vSj @JS=P u@/2)폚,~:/8 ~|C1 `0O@k #i{e%5v{mH;vmW#:(]X&ߵ׀ G37s[S '$ ?#sErP~;V:=Ca|x)F "ŷ!\8)_o LGHD҉PLpoQ$c,,Sv$9Ie6 8Pjiہ8Sc^p FG3Ծ۬jFa~&0+| rּ$&$f,ngO[ >йgVz~/g\Ԡb栖{g:nM1 Z;5f}&JwX쬈c^; 8hVLR |V X:5([wv7=Iһ;9sWm2ND[1Lw[^-Wq*N"肁3GK Z=S0PM%-{!uRNj u+Pnl6KA:,W27K`bsIeT'[qFmu4OCM$+2Z>Kll2g̑HۙLſC۷ %<2Ҿ|*LN1@u,.~P^wi˩zd,E{3ɂF^}a1#zWe9J OII,bz؍H)T9S}-MU8S-+p" V}IdBXn\M?ya<=_?fQ9憏tU- ?՛7R);m?q<"$&/Zb.h~miYb9կQ)XSE31*i?8-H? ~V2ޱ.(V G.Ea/UEz >& !_Z*_}]IW^~eXmײi)IbDg%;qh)9V_o?]`(~Ȼp>æ)3N7*k(`<6Œtz<|@ݽiD*nBK-eFD[Hx]< r@G p_?/XJ|*X[:]5d#k-9e@wkۨmlPzyD F7BڨX[uf#dȄC&vv4dv#]5}>[Pv4pPb?یQCqwf@.Ӳ|א㓩~#a8!h5ǽ㴜 lW+j F(pU JMX"c~ kXk9W?TyM0z`db\u(E|dΛd-X*8/;YL"' g~ϙ͐j)~lkI8eҴu7@U0C,^@R4#$xZbu*5X DW~Ў,kŝI%.+eZZE>!S6ӼY,y#C>(6VL& ~-OA,q0QLҵ9-K ]M/VdAfvzwYvgI贝-PꀩrѓѡVvFŞq3y3+eDNЈaDZj4hXQ@d>!B׫mZ4Ag8P8RE89d7pʴ2@ٴ 'Ώ͎Yu]eʣ￟PXkCMEuHLd9=uLeVzZ%q,G24fBEwE­ 8 W'2+DDz^Vm!.ZC&"tb+iKl@(:jub ȻJ{WZhR(H :Z6%21#8B&]v["1.>fwTtvхϪ 1H: -ρ?nOFna0u?Z~`x n+} O5׉~jD5ӶZ/4^"S*pZ'Vڥjk#rmK;`AZ+gdn_'M(-i^EݒӵL4bWe=ژToB ͳ^C!u]7d<{B94\v+1ǗDd@ x?~RTl!sqY-b l`j+֢ߗuYZZ-^uhqtLRȋfJ"~G7~E⌋FC@ 6H>KQo=MbGtk(i{i9\r9NqԗC)F#!bwI3іWlSaYAemz4Dc`n=ܟ<1 5pLZQ)>A>=Rb}i;Ҹ*OOC3o-iC,=|5=E6U4Tl/8?4%-n걠5AVGoUe!ZQߢ0a&V@lt\B6{ƀ5vfH Z*59 ='g%m.hްdd|?KusKY> ܍x}x4 26_wһ|0$7ZșfIC^0NP*kuQyO;b}A"n˸ @v[dW ˫”vn~mħzz^$*<5m5bo ɭuΨAzJџML 0Cԅj .{>$|ݵvR#]h_Ce@ j]J (8y F~-utzt_LH8Ynù Z#ӛ*_eeڽRu2,{OvOe4 EiX[|R|Jx{/[{A g'mmeBEw5o*>_k'|Thwh݈PGv\m'/J+lpH 6X'AēnQ@Ma S,pMvԻV` 4*Pr&o vc, mESd2>ӽ##p'}:L:ܴF&<[ӝ qfxu&-h)jj^]*`S'H<)FDh.P-+RgCa"p@^<2 .վٽ$\20ZϤ2~[d*YTIVdJk.X[c{jFd,am~٦5tc/D9RPA1rUތZp"|b8"AgPZuUzx|wT dA8u& Kz]⸲uȱMG/򴴺 (Jp`D0R[{d y+^) p8`_o(yi#>8.x&?V*(߄}iY/z=gMo[ ^ :EMYxQٱ d z}-t~ǟxQ!>VEKNa[$y/MHq(zA:{̙SU i6t=P5͓?ZlGV(a1k6Mk솲"ZR ˸TLJO)rnY4]~l{xuu hc?FTTo{g>rfV*0Z: p84_'C 2L*fjQ9'<#{2{S>$x=skwG /IzG=uY$q7B k59jMX t& >h#!e(@Ol;wm)s:V:D%of or܈)_RyfoLc1DcfcqDD6b~C4(x [EɁg[Bs+h8q@$.*.#*iV+ZPx`(de뀠(9 a_xWώ)[uz֐`j7Lȼ䣦[ E A66-!{|\0ws5 )Et{et8FĘHO1@lY n_1+2m:4aG &,&('FP*Ⱥo49wL9?`0"_}W+FڠUuj{!XBK@59K6#4a7y623LQoS? xke颞Zn-Br{h.u&P͹Eaķk{nxOZ!ͨ*θZ ؇e8|0k+^|LÂ* ` R >~ 8F4R1ƛ54m!2ɟiw7u2&s:39g^7`!-zaڇ }ʩ;4cxR"kC$1̻+;o#tpԒnUt%jօ ƕT0jNBb[_EYJgX;[0_0ڿwvl}k o^ZF̸:t,T#:L$\Dy:3bNByu1cƯNQE[Ҡ eK0Tb IZBaf\N,Zr"Kٻ&\nܩ/]|^iq;jXKQ*viȞEI!}`ǸF]0Jo9>z#+|⭤?3ae?#MjD?P{lJ-t~'Є p_bŸ29Ij)5b0%~ W7GVmՂQJ/=?s1rzPĬdFkh/r`C-6.pWz!^%7}N?..,24t(LM >J @V4s,l.[oGEe =L(8ᔀ ؔ@'Y{S1!}<̼5)E0IBqk|ԃ">[׈&!4; _^oCI^Ƃ@.0\BEĴf1?Z XZf_̍#c8 gRw@$BHY_#"X^UP_ьUi7[.s'b)6֎ L).צO 6 ma*Q.ZX#-?9:TZXf2ٙlǃ{ױ )7-hc9j{ BxO\i1),qiU4 ufD6q~ f1^9QUm@g('JT jw̜#ʰzTLjSD7ӻkqɣ↲]h*9; ,鑇$?!VN(0c猟Ȥў= q?s]5Qk{_b0cLxπVu$A]/Gy[a CV~>ϥ[kvŌ;(!0ܬ8K:Zg{;n#f:T!#V~@CLG  |2]D1AS_Ny`sVW 1nВUkSnwӰ|}m% 3Մ9!zY9}eܬPs`[tX~U}J))<FB+ Ϧ[SkUGO=|pB|pR6L)㯘,Y86բQ|A@.Ls?'*SF-H;?f/W|뮟N\>ٷ nl޶Ű˖R}3D⛋9xe"}p*MMM#ա"-K4B3&(CH(#S6ƙMz~'w3r$i Pڴ0b5iMwOG碘NHQr#BO巾~IX*M"fŮF<{=ޟ=w-/m?30-k 2@n}W2l]YnA[`%`KvBFQ鼩1L^r.o󘁞69I' u$CIJ8tJW[k16|et^W ˾ ]+sj3IVl+Ds\+؉&= '&ɏd ȡCQ,j/pG`bvZ:8"~-%j`j{r\AJ0IJA)B p=,Fnr;9R[\@uҧwF6 nР72wdXTR]6qqB3 }:w%Q*KG_IKcZUߵ;W-?~RZ;/Um+B A*Sp² n)F#ܞ*9eG"|%Cv97u33:z淔})sB}x[IPi$*q̝'V9I7*8Hljxg0^g%n5>Y! 򌥐 m`ti9TԦ-6Ӣa+A12p]Q~#ۥcM:eB קaL, %rz ?:#K@g0(ܯSru[zjj [Jב 8D$ڶ =7gh2%#hUT >wԈ1:yzgZe7-&q!J<9> Nd6#)M @DCe8v~i95M [a7phpT{-K\q.O!*8ŧNNeZ)c]J*4FU+ 5Mу4c{ D-bI'N+RWMь Rt9w\wa2h)ma~@+fqhcTVhxد%oA ^^5>C!+>thڐeZA?+դ9 3aT`ͦp;#' ?H?m)Ѡ']qhq5MbUeI.LX9/z2,rK^6 YAdN Q&㒏{#}_!xf[ D6>g*JW ڹ548PXm5ʨEoV"b%_>-ٿWQUd9$uWc5/ i`) j/нN Rޭ89i4t?"tB?j$TEx"R,〴0k‚O|ɞVK:eo#ə0$UǰU!ok8!!@ =Ae-6;ܧ_τO&z~+5}Yh05njwxjN *0Zj( xяѠ*z8_^ _ou%|gt, $~{vUÉ-k1^4ܸ8U \mК(.I+ VS>lA}q,_v4wAx栀m1t(.C/ٲi# ie#N5+dêޯA'$Xtk7-l;P V5-\z.8RSOXpOVh6pd[3iY>+C߼QğKOLD z ~>/݌,|K)80JQSz 1mA#v#Ws }ܚmj0rZ3`dNٳeBb0lbwfWIoBxOǨ3#^^q4no?~ eW(JƫSt+(P;G|dRQ.4qO{Y6&h˔?Z -?,bQ,Y^_^cV;5y5#paÛ~r`BZvMS<)rM[iUYhٵthǹ5ơ_C.`2+.NO["lS PH(16Ci:Uu˱ 1ƊM`) f ]vWR7r&tpNK،+J6+!SHnI3T;s/e[a1S w~< g: V kCm |䐹/S:o)!J3*AGv &v I`֓;TH|`x U&ٜRjKR3~ piZrX`|qMc $;etNgC-H04H!D/rR襁IRz\J(Gs~e'Et"`-cRu&%VgF~.+l`q`C;Kr+gΤF2P6mT'}MMv %q".dM;4RjwHʬvOSX%…9+i?hʘ&dfZ6b#ͨaO2V^2lڧyA~Qb)*Dn>j@6etYTQ+٫E!m28sk*MѾ KGxJjj F/ddI=PF@]5saz6M&ө'09i*2J?'܃>(XhdLyLܪnSa +h0oJc=x%E$ ⥑_[ 膼jz3_i0^ƁtyK>;Fk R~jv \eվ)mVCkrv=p/@3q-[ǜ:8Ln$3Gރ$Wޝ}-Ŀ*}OWSCuVA?w۴:.7t7-Oڨ4S32$?T7ҍ7ȟ ;q F[8n? Q}pkq]7]qZyї]`KAgw*f A+4X{B- 2cLWpk qBOĐsƂ @ȋNu?qSs|xw1P{O"#r0p>%3}2m5@!| 5iL@¢\J$ vQcw(Yw _=߄'*΀}Yt7bp`4$0q2z؂'=wJh JzQw 0j&yW=:LWGF蓿Ռ꣄k7[ :]M/u:**x d!fggt[>ѹbeTGɬc ןU M'"䯾LJ_!"ح靶 Hp.g^@;9Dz56X# ^Uv4PہUVb9ERikp~N| ~O أ"Y+ /mJ VEfS֩+D ^韣=;kRi|6ZfΈ9=@Zd! sA_{SSvW[~ 0ځ>? Qʀs4cS`mCӚ [B#"6Qw=b@nI_ m*ԭ`.Pý2b1rzY}jH#CaIbCVM uwEc$Wott=S0.u %7,eCqxn f`U#LNJvIn{,͎uoQ|U >xA,&Ch\wW~ՠ7D u|ypz3]thL!`=hӑM0Ū9Nh_jEgr!# 21#<1`&nPD?Z+[ԜV ૦o ʼnX+ ??K eUc5 خ3F!J yr$Ih + Sju#4#>j緈7ZHIaǍ?Ǣg:?Y=³,^neI 7tBōWw!=q|s.9>vLr($X ,̸ݲ:|ﹳ璼4u&j ;RX<(`}hOQ$hq G;F.ôFCGG ewk7 ",8A,9eZ£>wG%kwe0?_pni+z*,)27밇mSvW@tº|Ƃ9k@0;;ȕãӁ|3'pXܘVr{rC f\|7X> 6Zw|`6vn)R:J#Ŕ`6^jpHJ7֮@q-ذ?XxG@Ȁs~j!ƶ2h?*L '<$'`zwB*X\T @s=&lF wĊ5!(v-Qhs(7Eo>jʈzmunLzȣ" ˱צ;&ƒ)Y5DG$Kɮ//>{`Y9wT*l `1OhU܈F%Xad 螛2FO<;QyZ_]jY9 ;_$ذrxgtprwznC~3t[eGc{'sQA(F_/`ĜedFdFnyY^Ev8Dikm:A}2~D¦\!ÅCՋ?BTdB7QACehi0[WwI(WDS@m?8+B}oaRC|ߊZ[ lF 5$hyd!M\gNwNnT@I1Sh&%Ľ&`#I~]6J{a+L^0宙  FO(a`usw& 93_,Ilo.n֫.iXA"yJm+ _jV- _aju#hꃄqh.%et)zgR*ΌptnMC7ryCڔjm:hFr@Va}c;5Ʈ-S j([/ؙQzu1gf;l.9D@E/\9s1}i\^#GO۳ӯȸaFN`%ѴQ5 cӔ;g|wolrn /&HE8cwJx!.1^\=77ňJɁDQof >BcwͥrPğK=/Tz盪f곫ղjT(U&hI  bE\1GER؛܈YZgb fT^ "HpX:y%L@Yq{+vwFu`46ܪ ob|ipa HHDTLĤB_}{kΠzO:KJ Őɯ3z~y‚/8x)1m?T%nѶ@`6Qc{ZT% \Yg`5Ebs1HDN䒩$j/ouV|Zoyu \VGs5gD+9u9w)t@zGOG.HgLSΦ: r `X!(-aF]5E3f kq\+nȬ. US+<OWX F}1tV!1Dh(dn4|Ѕw$&bad}.I4#o<- n@Jֈ\- B&"F|lx~#Zyqٹ)GkDh sn˵64^Uٍ\E-6^0("GkXQHOȤ1A @/λ+GY1Zk*\3EhtoN3j#v5"{s~LBK'tM'Нƥ*0Ru4z؜p_Ԝ<. f6i,يbelg[gt*>h35);۽kD#U@MAZ4-|s{ATK= PpV`x8B ,lgmi_vu{MyABNBw¨SNЬ"_B0@ eb )32ZS {֓=8svvn%0 S^%ia+=4P5I*.W1*ڃ)# H52R 8jݦ%0u` پ([>&7BFL'M`$ax¾ce,k@KH1%nrRF)W`PsTɷ%ir|7Y(oỰvz"a 6 ͍{uޅZ\A|&JWo5 Wv:νp\nM$MUہb88 ,PezezK(i!;i:`[ihb2UNQ [{B;ؒPY/ *[BR@NYE !LR8p78=H]Zs⽢H\7Sʐ9yR$=RVƶXKԍ_v<77U|:q>^:`Rdi`c]o_ɾX} ,NBĢ0c ld֐(abrT64uu1E!z}@d[-xP6gӫoGY/gckrۀOAbD{F&#+U]Bqn!Ӫ\R#0,|9;_-J?KΠTl&%{  ?OIKP46H/%rf#Ũ_gұ>Ha!'Qj8XS\rwAi"/a=lW%{-L+UvqjeSAHyfuϽw׿&c3 _0k8]aqFKGBg>uMgtJź23̝I{Vv= ZvP;5R=3Lj"H\ 'DS](^g kHd}"Bv&s샓 +0E8$M\>VK#q^EduC4 8>aHq:Hf_|֪y2 ;z9{7jPT/ҥM=$1V?E4?ϝ*ŵ{fϊCV籎UrYyyXW.y/ZWsǍUQ5 7]vrJ)PZ7o!%n[àWtbv!~Qf/P…quǸ]b9vkUlћl$;@X M_0M`"64'jkL#t$.*Ux=i6W9jD/Sp5bʓ)*I.HcN;3aUpB5J8VBά"-)/{(*)0v`Zw7;Ҙ\2TIKb:>=N4ߤe- +<>T6 U|J$_ zBd ̊'-$R:=ф/,cFma vB}Х^M2*EAx1vDSy?~.`9 g-=Xqcv(, F bTa_hs8;<&"`  "(D$}ڦgUc0Uv4x*=ބ. zBE 4b2"n wYy:{Guu1P}Dc3]2kEE{:Gꫮ]ܑsMO Dtkg]_/~bQxHL EIoK WγcN ;BEx{ RP@` L&1]j|V"dBty-B3F][-9Y-`{w]~FLب ]_q4FbQ&<)`]k *Gk@*N{@Qw}Ve,I欽=x\j:r1uG =T˘x.SY/7C$ Bc,;7'o2Q/z*=KQ'5CU2d&HCH⮃G~<f~D[mX˔ x$Ξ )ڑOP0q_8*BZGձ6Ʈj7;K+Z'pY2PyZr%Y/[J {x ](}Q &5NSWR0QSv}wfbEvo`u4G\o3q6]{ .}kzyW! )BԎ[/`ȋ:x'y; mniAt#yH=byhEH!.NfUi[Բ27 ׼{~"VPjCvVu$!?U =5#DkAn *_Ĥ),~U~4ژ@ߞΈ4w0#PhЊUnt*>7okҜ\'7%GfNU};fg :й(lQ `T.,4CqIu51$(7(zM"K5s.13&"}8G.`.ʴpYl.hovYu47Bl])>1R3"ctX@ž#J- uuFYJs4y[rdk]ESgc @9OP细{H-HVҿӊ}vIT.<>ANH6=唽Fȏř1zm)i%kn fٓ zU5bԃM+45ᅘΨaҚH^Rwp<ρjj8X[8?r-iD5/̗XL#d>.R~ka6/933_NA3Mqx,pE.BzާbE.$dRD˱d,-GB9KH37oIh&Z#x8Y|1\rOw~yrOl+(TPF{fI_MԒ@@jNїQV#She5W4g˵!ҁGlf1ê v2f\HE5 ש)4/]mow-C3"k|c M):G_FG:^xR5 IKW`[Y!뢪'}[y}}x1jO`=뗲o9a9b0@LbeX^ue??1>NR 6.2EMO0N.#Gd¾<cSkYG/_F._$HyS "@}[penGqkվńyRm5zT &Ċ:7$lL7Ð*B?ʰIa#:>Y(C G9*dGu۹}@Mcf^9'7ƔlqH7ꭀ\rn)Ҿ+q)2ÃbBeiY$V8'1}Kw<>f7k1e %A?2(KkFV?& oGصZ򧘡vl'TXٜ diGp>ypi #K0\=2K&xW)֒GG&"L5f;9hXjd F8w]쟘C:F8ZѴHR (Im(Ud/"v"ε :˞X[-cBe}S,`GyG-y7ںȒvlj+AOf;@k1%٨ q.i|;.@7CY5]N"aJKn @ch&$?薫R.ʦ75! `'v4,JF4+Ə Mx@(zQ$u޻AlB_2 n1n5.elHqЎ_2pI֛ mk݌~2ɳ7@j5#5z6fum=do$m~~Ǒ}銴uZ[$t:ƪHIy˝||XS@;v]g켢P ypaw ;`p'7\,"?,)d"&a` =7~5→cU]5nmvɄ>BV!K ֎g2Drn]e^F.LfBV4E]\;V2|˚3\ d#D _Hi@#ŝ DԘ3Kߌyoky{C<}Qn=/c -E@@)l@/MHGWy]Qғ3&8%y 0*>l tKi6IO%rߛ =eb%6iubv=4 |pWVͽvb}_&YgX5uO8}I" _Kg ʃXbr#^[^ F Q@ 7 %[_P%= \e..hJW7c|6JhuxEKzQP-e,(䜹4AܨK}{2жA[Tjˡ_ v,ojP5 /oM$=!40I)*@_oZ9;5%, {?gc,уVr| (} CRW7,zE s LC"jb-<'?54/j>ne(Kh 1-Q}p?v[sQJEO7I"j0h{^dRF \4 |ӑy2%P5f?>q+;HxYtͫnmSC}™!t6恀5]۽IѲV:.__rhj#'@v yPufmLe,`!Ƒ"BuN^UBcnUE]h{`&_WD.,$u jX+؋AJ<ԉ2} |ܵيI6T兮`LvBH|2>'tMӔ3hlE{v]9n#P霦4/ܨg@@]:Not!<cY Y%ld '-9x:7P5t )̬ۓ0s\V3w5͢4ʉ0N}v/7V<D0wqOJM`pvj(N?`-h= 3uU7fmgL.Vv@%U=yj /llRfD pu 7``]{{O#eOnd#z c&j0&=+'g*0d^ҪB )f03!|x#5 5Nm] @7|*5 l9s SUǁ%f7T R|OY3N<އf[?leK6}_·R+.9ީ\saLsTǁW IA4H5mDsxӾ^ P[jFp1BGד,ᏬAkvّ! rdU3m1as40k]ۧ*amrE׉0Хv :0hL1-Mmɩ1N3~ڏS8yӄ.KZ}<*0iwE|I;U8"oK?崗J*'A7i>A?ػeX9f}570IZ3 [--s+2Hw;3;afU08{U( x,PكȥX1Rf+D%c嵠87]]EY<3]'&Uo¡mJ(*\f.J,xL\oY(!v]S6Bǽ(ڢ2@)E xXu5g?t<}%.J֜=*2xcvq 6IX}I0mi*7p_#vf#5R9{Я|˜/;:Ui02MAz-qK2N̒gME+YΫarB`ԊZKxޅ}f:+~\Π=T{/=_If%|v"@J"%\M'udJ>8ZWrux'k)Xe YZ